CVE Vulnerability Database

Search and browse 375,847 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.

CVE IDSeverityCVSSDescription
CVE-2026-48414HIGH7.7Adobe Commerce is affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged...
CVE-2026-48413HIGH8.7Adobe Commerce is affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged...
CVE-2026-48412LOW2.7Adobe Commerce is affected by an Incorrect Authorization vulnerability that could result in privilege escalation. An att...
CVE-2026-48411MEDIUM6.5Adobe Commerce is affected by an Incorrect Authorization vulnerability that could result in a Security feature bypass. A...
CVE-2026-48410HIGH7.8Lightroom Classic is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in t...
CVE-2026-48409HIGH7.8Lightroom Classic is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in t...
CVE-2026-48408HIGH7.8Lightroom Classic is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in t...
CVE-2026-48407HIGH7.8Lightroom Classic is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in t...
CVE-2026-48406HIGH7.8Lightroom Classic is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in t...
CVE-2026-48405HIGH7.8Lightroom Classic is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in t...
CVE-2026-48404HIGH7.8Lightroom Classic is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in t...
CVE-2026-48397HIGH8.6Lightroom Classic is affected by a Deserialization of Untrusted Data vulnerability that could result in arbitrary code e...
CVE-2026-48381CRITICAL9Adobe Campaign Classic (ACC) is affected by an Improper Neutralization of Special Elements used in an SQL Command ('SQL ...
CVE-2026-47940HIGH7.8Lightroom Classic is affected by an Integer Overflow or Wraparound vulnerability that could result in arbitrary code exe...
CVE-2026-47705CRITICAL9.6TypeBot is a chatbot builder tool. Version 3.16.1 has a CSV injection vulnerability in the result export functionality. ...
CVE-2026-27302CRITICAL10Adobe Campaign Classic (ACC) is affected by an Incorrect Authorization vulnerability that could result in arbitrary code...
CVE-2026-20917MEDIUM4Exposure of sensitive information caused by incorrect data forwarding during transient execution for some Intel(R) Proce...
CVE-2026-20901MEDIUM4Improper input validation for some Intel(R) Xeon(R) processors within firmware may allow an escalation of privilege. Sta...
CVE-2026-20712MEDIUM4Incomplete cleanup in some UEFI firmware for some Intel(R) reference platforms within UEFI may allow an information disc...
CVE-2026-0465MEDIUM5.6A Use‑After‑Free (UAF) vulnerability in the AMD Ryzen™ Master Utility Driver could allow a local attacker to access kern...
CVE-2025-54512HIGH7A DLL hijacking vulnerability within the AMD Ryzen Master installation could allow a local user-privileged attacker to e...
CVE-2025-0046HIGH7Incorrect directory permissions could allow a local user to escalate their privileges, potentially resulting in arbitrar...
CVE-2022-50997HIGH7.5Weaver (Fanwei) E-cology 8.0 and 9.0 contains a SQL injection vulnerability in the HrmCareerApplyPerView.jsp endpoint th...
CVE-2016-20097HIGH7.5Weaver (Fanwei) E-cology 8.0 contains a SQL injection vulnerability in the SignatureDownLoad servlet that allows unauthe...
CVE-2026-73089HIGH7.5Browserslist is a configuration tool for sharing target browsers and Node.js versions between front-end tools. Prior to ...